Search
13,088 CVEs
CVEs (13,088, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 451–475 of 13,088 (capped at 500)
| CVE ID ↓ | Severity | Patch | CVSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-85504 | CRITICAL | Patched | 9.8 | 2026-09-04 | FreeIPMI before 1.6.19 has a stack-based buffer overflow in _ipmi_sel_oem_fujitsu_get_sel_entry_long_text in libfreeipmi/sel/ipmi-sel-string-fujitsu-irmc-common.c via malfo… |
| CVE-2026-85458 | NONE | — | 2026-09-03 | Divide-by-zero in Xpdf 4.06 (and earlier), when a glyph in a Type 3 font has a zero height. | |
| CVE-2026-85456 | MEDIUM | 5.5 | 2026-09-03 | MOOS-IvP through 24.8.1 fails to properly validate variable names extracted from alog files in the SplitHandler, allowing attackers to write files outside the split directo… | |
| CVE-2026-85455 | HIGH | 8.2 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a buffer over-read vulnerability in CMOOSCommPkt where a four-byte packet triggers out-of-bounds memory access during deserialization… | |
| CVE-2026-85454 | MEDIUM | 6.1 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a buffer overflow vulnerability in CMOOSSerialPort::GetTelegram() that writes a NUL terminator one byte past the serial telegram stac… | |
| CVE-2026-85453 | MEDIUM | 6.1 | 2026-09-03 | MOOS core-moos through 10.4.0 fails to escape database contents when rendering MOOSDB HTTP pages, allowing attackers to inject malicious scripts. Any MOOS publisher can set… | |
| CVE-2026-85452 | HIGH | 8.8 | 2026-09-03 | MOOS ui-moos through 50b9c6c contains a buffer overflow vulnerability in ScopeTabPane.cpp and ScopeGrid.cpp where client and variable names are formatted into fixed 1024-by… | |
| CVE-2026-85451 | HIGH | 7.1 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a remote process termination vulnerability in the SuicidalSleeper component that uses a hard-coded passphrase for multicast command a… | |
| CVE-2026-85450 | HIGH | 7.5 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a denial of service vulnerability in the MOOSDB HTTP server that creates unbounded connections and threads without limits. Attackers … | |
| CVE-2026-85449 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP pMarineViewer through 24.8.1 fails to limit the number of tracked node identities from NODE_REPORT messages, allowing attackers to exhaust memory by supplying unbo… | |
| CVE-2026-85448 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP uFldShoreBroker through 24.8.1 fails to limit the number of claimed communities stored in parallel vectors within ShoreBroker::handleMailNodePing(). A single publi… | |
| CVE-2026-85447 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP pRealm through version 24.8.1 accepts unbounded REALMCAST_REQ subscriptions without validating duration or variable list limits. Attackers can register long-lived … | |
| CVE-2026-85446 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP versions through 24.8.1 contain a quadratic processing vulnerability in uFldNodeComms where each new node identity creates a ledger entry and triggers all-pairs di… | |
| CVE-2026-85445 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP through 24.8.1 contains a denial of service vulnerability in the Demuxer::addMuxPacket() function that trusts the packet count declared in mux headers without vali… | |
| CVE-2026-85444 | HIGH | 7.5 | 2026-09-03 | MOOS-IvP through 24.8.1 contains a buffer over-read vulnerability in isQuoted(), isBraced(), and isChevroned() functions that strip whitespace but index using the original … | |
| CVE-2026-85443 | HIGH | 7.5 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a denial of service vulnerability in MOOSCommServer::ListenLoop() where the accept thread performs a blocking receive without timeout… | |
| CVE-2026-85442 | HIGH | 7.5 | 2026-09-03 | MOOS core-moos through 10.4.0 fails to validate packet length declarations in CMOOSCommPkt::OnBytesWritten(), allowing unauthenticated attackers to trigger unbounded buffer… | |
| CVE-2026-85441 | HIGH | 7.5 | 2026-09-03 | MOOS core-moos through 10.4.0 fails to validate that serialized string lengths are non-negative in CMOOSMsg::operator>>. Unauthenticated attackers can send a crafted messag… | |
| CVE-2026-85440 | CRITICAL | 9.8 | 2026-09-03 | MOOS core-moos through 10.4.0 contains a pre-authentication heap overflow vulnerability in MOOSCommPkt packet handling that allows remote attackers to write arbitrary data … | |
| CVE-2026-85439 | HIGH | 7.8 | 2026-09-03 | MOOS-IvP through 24.8.1 contains a remote code execution vulnerability in alogsplit's SplitHandler::handlePreCheckSplitDir() function that fails to sanitize shell metachara… | |
| CVE-2026-85438 | CRITICAL | 9.8 | 2026-09-03 | MOOS-IvP through 24.8.1 contains a buffer overflow vulnerability in StringToIvPFunction() where dimension, piece, and degree counts from encoded BHV_IPF payloads are used a… | |
| CVE-2026-85437 | CRITICAL | 9.8 | 2026-09-03 | MOOS-IvP through 24.8.1 contains multiple buffer overflow vulnerabilities in IvP function string decoders that trust attacker-controlled length fields without validation. A… | |
| CVE-2026-85436 | HIGH | 7.5 | 2026-09-03 | MOOS essential-moos through 10.0.1 contains a buffer overflow vulnerability in CMOOSUDPLink::ReadPktFromArray() that allows remote attackers to corrupt heap memory by sendi… | |
| CVE-2026-85435 | CRITICAL | 9.1 | 2026-09-03 | MOOS-IvP uFldNodeBroker through 24.8.1 fails to validate the source of TRY_SHORE_HOST messages on the vehicle bus, allowing any publisher to enroll attacker-controlled shor… | |
| CVE-2026-85434 | CRITICAL | 9.1 | 2026-09-03 | MOOS-IvP uFldShoreBroker through 24.8.1 fails to verify node ping authenticity before creating outbound bridge routes. Attackers can publish NODE_BROKER_PING messages with … |